Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 13, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
227781 7.5 危険 pyxicom - Joomla! 用の actualite モジュールにおける SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-4617 2012-12-20 18:52 2008-10-20 Show GitHub Exploit DB Packet Storm
227782 5 警告 the spanner
WordPress.org
- WordPress の SpamBam プラグインにおける制限を回避される脆弱性 CWE-20
不適切な入力確認
CVE-2008-4616 2012-12-20 18:52 2008-10-20 Show GitHub Exploit DB Packet Storm
227783 10 危険 portalapp - PortalApp の i_utils.asp における脆弱性 CWE-noinfo
情報不足
CVE-2008-4615 2012-12-20 18:52 2008-10-20 Show GitHub Exploit DB Packet Storm
227784 7.5 危険 portalapp - PortalApp におけるトピックなどを作成および削除される脆弱性 CWE-287
不適切な認証
CVE-2008-4614 2012-12-20 18:52 2008-10-20 Show GitHub Exploit DB Packet Storm
227785 7.5 危険 portalapp - PortalApp の forums.asp における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-4613 2012-12-20 18:52 2008-10-20 Show GitHub Exploit DB Packet Storm
227786 4.3 警告 portalapp - PortalApp におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2008-4612 2012-12-20 18:52 2008-10-20 Show GitHub Exploit DB Packet Storm
227787 6.5 警告 qualityunit - Post Affiliate Pro の index.php におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2008-4602 2012-12-20 18:52 2008-10-17 Show GitHub Exploit DB Packet Storm
227788 7.5 危険 steve dawson - PokerMax Poker League Tournament Script の configure.php における認証を回避される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2008-4600 2012-12-20 18:52 2008-10-17 Show GitHub Exploit DB Packet Storm
227789 10 危険 slaytanic scripts - Slaytanic Scripts Content Plus における脆弱性 CWE-noinfo
情報不足
CVE-2008-4595 2012-12-20 18:52 2008-10-17 Show GitHub Exploit DB Packet Storm
227790 10 危険 sportspanel - Sports Clubs Web Panel の index.php におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2008-4592 2012-12-20 18:52 2008-10-16 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 13, 2026, 5:05 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
214631 7.0 HIGH
Local
cyberark endpoint_privilege_manager A buffer overflow in the kernel driver CybKernelTracker.sys in CyberArk Endpoint Privilege Manager versions prior to 10.7 allows an attacker (without Administrator privileges) to escalate privileges … CWE-787
 Out-of-bounds Write
CVE-2019-9627 2024-11-21 13:51 2019-03-9 Show GitHub Exploit DB Packet Storm
214632 6.5 MEDIUM
Network
chshcms cscms An issue was discovered in Cscms 4.1.0. There is an admin.php/pay CSRF vulnerability that can change the payment account to redirect funds. CWE-352
 Origin Validation Error
CVE-2019-9598 2024-11-21 13:51 2019-03-8 Show GitHub Exploit DB Packet Storm
214633 8.8 HIGH
Network
boltcms bolt Controller/Async/FilesystemManager.php in the filemanager in Bolt before 3.6.5 allows remote attackers to execute arbitrary PHP code by renaming a previously uploaded file to have a .php extension. CWE-434
 Unrestricted Upload of File with Dangerous Type 
CVE-2019-9185 2024-11-21 13:51 2019-03-8 Show GitHub Exploit DB Packet Storm
214634 9.8 CRITICAL
Network
motorola m2_firmware
c1_firmware
An issue was discovered on Motorola C1 and M2 devices with firmware 1.01 and 1.07 respectively. This issue is a Command Injection allowing a remote attacker to execute arbitrary code, and get a root … CWE-78
OS Command 
CVE-2019-9121 2024-11-21 13:51 2019-03-8 Show GitHub Exploit DB Packet Storm
214635 9.8 CRITICAL
Network
motorola m2_firmware
c1_firmware
An issue was discovered on Motorola C1 and M2 devices with firmware 1.01 and 1.07 respectively. This issue is a Command Injection allowing a remote attacker to execute arbitrary code, and get a root … CWE-78
OS Command 
CVE-2019-9120 2024-11-21 13:51 2019-03-8 Show GitHub Exploit DB Packet Storm
214636 9.8 CRITICAL
Network
motorola m2_firmware
c1_firmware
An issue was discovered on Motorola C1 and M2 devices with firmware 1.01 and 1.07 respectively. This issue is a Command Injection allowing a remote attacker to execute arbitrary code, and get a root … CWE-78
OS Command 
CVE-2019-9119 2024-11-21 13:51 2019-03-8 Show GitHub Exploit DB Packet Storm
214637 9.8 CRITICAL
Network
motorola m2_firmware
c1_firmware
An issue was discovered on Motorola C1 and M2 devices with firmware 1.01 and 1.07 respectively. This issue is a Command Injection allowing a remote attacker to execute arbitrary code, and get a root … CWE-78
OS Command 
CVE-2019-9118 2024-11-21 13:51 2019-03-8 Show GitHub Exploit DB Packet Storm
214638 9.8 CRITICAL
Network
motorola m2_firmware
c1_firmware
An issue was discovered on Motorola C1 and M2 devices with firmware 1.01 and 1.07 respectively. This issue is a Command Injection allowing a remote attacker to execute arbitrary code, and get a root … CWE-78
OS Command 
CVE-2019-9117 2024-11-21 13:51 2019-03-8 Show GitHub Exploit DB Packet Storm
214639 9.8 CRITICAL
Network
phpshe phpshe PHPSHE 1.7 allows module/index/cart.php pintuan_id SQL Injection to index.php. CWE-89
SQL Injection
CVE-2019-9626 2024-11-21 13:51 2019-03-8 Show GitHub Exploit DB Packet Storm
214640 8.8 HIGH
Network
directadmin directadmin JBMC DirectAdmin 1.55 allows CSRF via the /CMD_ACCOUNT_ADMIN URI to create a new admin account. CWE-352
 Origin Validation Error
CVE-2019-9625 2024-11-21 13:51 2019-03-8 Show GitHub Exploit DB Packet Storm